2007 CVE Vulnerabilities

6,580 CVEs published in 2007.

CVE IDSeverityCVSSDescription
CVE-2007-6575——SQL injection vulnerability in default.php in MMSLamp allows remote attackers to execute arbitrary SQL commands via the ...
CVE-2007-6576——Multiple SQL injection vulnerabilities in Adult Script 1.6.5 and earlier allow remote attackers to execute arbitrary SQL...
CVE-2007-6577——Multiple SQL injection vulnerabilities in index.php in zBlog 1.2 allow remote attackers to execute arbitrary SQL command...
CVE-2007-6578——SQL injection vulnerability in go.php in PHP ZLink 0.3 allows remote attackers to execute arbitrary SQL commands via the...
CVE-2007-6579——Multiple SQL injection vulnerabilities in Ip Reg 0.3 allow remote attackers to execute arbitrary SQL commands via the vl...
CVE-2007-6580——Multiple SQL injection vulnerabilities in Wallpaper Site 1.0.09 allow remote attackers to execute arbitrary SQL commands...
CVE-2007-6581——Multiple directory traversal vulnerabilities in Social Engine 2.0 allow remote attackers to include and execute arbitrar...
CVE-2007-6582——Directory traversal vulnerability in index.php in mBlog 1.2 allows remote attackers to read arbitrary files via a .. (do...
CVE-2007-6583——SQL injection vulnerability in admin/ops/findip/ajax/search.php in 1024 CMS 1.3.1 allows remote attackers to execute arb...
CVE-2007-6584——Multiple directory traversal vulnerabilities in 1024 CMS 1.3.1 allow remote attackers to include and execute arbitrary l...
CVE-2007-6585——PHP remote file inclusion vulnerability in confirmUnsubscription.php in NmnNewsletter 1.0.7 allows remote attackers to e...
CVE-2007-6586——SQL injection vulnerability in sezione_news.php in nicLOR-CMS allows remote attackers to execute arbitrary SQL commands ...
CVE-2007-6587——SQL injection vulnerability in plog-rss.php in Plogger 1.0 Beta 3.0 allows remote attackers to execute arbitrary SQL com...
CVE-2007-6588——Cross-site scripting (XSS) vulnerability in PHCDownload 1.10 allows remote attackers to inject arbitrary web script or H...
CVE-2007-6589——The jar protocol handler in Mozilla Firefox before 2.0.0.10 and SeaMonkey before 1.1.7 does not update the origin domain...
CVE-2007-6591——KDE Konqueror 3.5.5 and 3.95.00, when a user accepts an SSL server certificate on the basis of the CN domain name in the...
CVE-2007-6543——SQL injection vulnerability in suggest-link.php in eSyndiCat Link Exchange Script allows remote attackers to execute arb...
CVE-2007-6544——Multiple SQL injection vulnerabilities in RunCMS before 1.6.1 allow remote attackers to execute arbitrary SQL commands v...
CVE-2007-6545——Multiple cross-site scripting (XSS) vulnerabilities in RunCMS before 1.6.1 allow remote attackers to inject arbitrary we...
CVE-2007-6546——RunCMS before 1.6.1 uses a predictable session id, which makes it easier for remote attackers to hijack sessions via a m...
CVE-2007-6547——RunCMS before 1.6.1 does not require entry of the old password during a password change, which allows context-dependent ...
CVE-2007-6548——Multiple direct static code injection vulnerabilities in RunCMS before 1.6.1 allow remote authenticated administrators t...
CVE-2007-6549——Unspecified vulnerability in RunCMS before 1.6.1 has unknown impact and attack vectors, related to "pagetype using."
CVE-2007-6550——form.php in PMOS Help Desk 2.4 and earlier sends a redirect to the web browser but does not exit, which allows remote at...
CVE-2007-6551——SQL injection vulnerability in showMsg.php in MailMachine Pro 2.2.4, and other versions before 2.2.6, allows remote atta...

Check if your code is affected by 2007 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now